Aziz Farghly ⚡ · X (formerly Twitter)

Aziz Farghly ⚡

284

posts

Aziz Farghly ⚡ profile banner

user avatar

@FarghlyMal

Threat Researcher

@nextronsystems

(The thoughts and content I share are personal and not representative of my employer.)

Bavaria, Germany

Joined April 2023

  • Pinned

    user avatar

    I just published a detailed analysis about Stealc info stealer, a deep dive article about C/C++ stealer, the report involves - in detailed code analysis - config extractor - yara rule - IOCs

  • user avatar

    some samples : related to this campaign Troy Backdoor loader : 3a0bf3cf54f9e704c9350666ac854abce129c4e413070a6e2c7e7b28c623d744 following...

    user avatar

    0-Day Used by Lazarus in #DreamJob Campaign Against Defense Sector: 💥LPE vulnerability in Microsoft’s Afd.sys driver (CVE-2026-68820) 🧰New tools, including #Troy backdoor 🌍Compromised Roundcube servers (CVE-2025-49113) as infrastructure Read More : research.checkpoint.com/2026/shatterin…

  • user avatar

    user avatar

    Sample is now on VT! 🚩Hash: 65ab49119c845801f29a57e8aa177146b2ffbd289d4278109b146f933380f951 🎯Actor name: Hackledorb 🔹Comment: DragonForce, which has been active since at least June 2023 and is developed by a group Symantec tracks as Hackledorb, has transitioned from a

  • user avatar

    "I’m familiar with many of the techniques hackers use" a new technique to be learned 🫠

    user avatar

    This morning I was HACKED! I’m a blockchain developer with over 8 years of experience. I’m familiar with many of the techniques hackers use, but they are often one step ahead. They strike when you are most vulnerable. What happened: - A few days ago, I was contacted on

  • user avatar

    I’ve identified 5 fresh samples of the #LotusLite backdoor associated with Mustang Panda (APT) have surfaced , appear to be undocumented. Notably, at least 2 of these currently show 0 detections on VirusTotal.

Read the original on x.com ↗